diff --git a/logging/base/kustomization.yaml b/logging/base/kustomization.yaml index 3c4f35f3..c3d2a284 100644 --- a/logging/base/kustomization.yaml +++ b/logging/base/kustomization.yaml @@ -4,6 +4,7 @@ resources: - clusterloggings - clusterlogforwarders - externalsecrets + - rolebindings commonLabels: app.kubernetes.io/name: logging app.kubernetes.io/component: logging diff --git a/logging/base/rolebindings/kustomization.yaml b/logging/base/rolebindings/kustomization.yaml new file mode 100644 index 00000000..907a3073 --- /dev/null +++ b/logging/base/rolebindings/kustomization.yaml @@ -0,0 +1,4 @@ +apiVersion: kustomize.config.k8s.io/v1beta1 +kind: Kustomization +resources: + - rolebinding.yaml diff --git a/logging/base/rolebindings/rolebinding.yaml b/logging/base/rolebindings/rolebinding.yaml new file mode 100644 index 00000000..15909daf --- /dev/null +++ b/logging/base/rolebindings/rolebinding.yaml @@ -0,0 +1,13 @@ +kind: RoleBinding +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: log-collector-privileged-binding-nerc-logs-metrics + namespace: openshift-logging +subjects: + - kind: Group + apiGroup: rbac.authorization.k8s.io + name: nerc-logs-metrics +roleRef: + apiGroup: rbac.authorization.k8s.io + kind: Role + name: log-collector-privileged